MantisBT: master-2.24 6c3482d0
Author | Committer | Branch | Timestamp | Parent |
---|---|---|---|---|
dregad | dregad | master-2.24 | 2020-12-19 07:50 | master-2.24 f6502be6 |
Affected Issues | 0027779: CVE-2020-35571: XSS in helper_ensure_confirmed() calls | |||
Changeset | Use parameterized string for confirmation messages Previously, the confirmation message was built manually in several We now use a string with parameters, which is fed to sprintf prior to Updated strings:
Issue 0027779 |
|||
mod - lang/strings_english.txt | Diff File | |||
mod - manage_config_revert.php | Diff File | |||
mod - manage_custom_field_delete.php | Diff File | |||
mod - manage_filter_delete.php | Diff File | |||
mod - manage_proj_custom_field_remove.php | Diff File | |||
mod - manage_proj_user_remove.php | Diff File | |||
mod - manage_proj_ver_delete.php | Diff File | |||
mod - manage_user_delete.php | Diff File | |||
mod - manage_user_proj_delete.php | Diff File | |||
mod - proj_doc_delete.php | Diff File |